| GHSA-7p3p-8qv8-m2vh | |
| Use of Non-Canonical URL Paths for Authorization Decisions | |
| Information Exposure | |
| Improper Handling of Alternate Encoding | |
| GHSA-w7x5-g22v-xqhr | |
| GHSA-2fvj-hgj9-j2gr | |
| GHSA-f4v5-65jj-pcr2 | |
| Improper Input Validation | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-5jmj-h7xm-6q6v | |
| Incorrect Authorization | |
| GHSA-rmj7-2vxq-3g9f | |
| GHSA-rcqc-6cw3-h962 | |
| Incomplete Blacklist | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Incorrect Authorization | |
| Incomplete Blacklist | |
| GHSA-9fxm-vc8v-hj55 | |
| GHSA-5hh8-q8hv-fr38 | |
| GHSA-j3rv-43j4-c7qm | |
| Server-Side Request Forgery (SSRF) | |
| GHSA-hgj6-7826-r7m5 | |
| Improper Access Control | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Verification of Cryptographic Signature | |
| GHSA-3qp7-7mw8-wx86 | |
| GHSA-w573-9ffj-6ff9 | |
| GHSA-c653-97m9-rcg9 | |
| Information Exposure | |
| GHSA-x4gw-5cx5-pgmh | |
| GHSA-rwm7-x88c-3g2p | |
| Missing Release of Resource after Effective Lifetime | |
| Improper Encoding or Escaping of Output | |
| GHSA-355h-qmc2-wpwf | |
| GHSA-3pxv-7cmr-fjr4 | |
| Improper Encoding or Escaping of Output | |
| GHSA-445c-vh5m-36rj | |
| Improper Output Neutralization for Logs | |
| Improper Encoding or Escaping of Output | |
| Improper Validation of Certificate with Host Mismatch | |
| HTTP Request Smuggling | |
| GHSA-w35j-pv5h-q9q9 | |
| GHSA-6hg6-v5c8-fphq | |
| GHSA-h383-gmxw-35v2 | |